https://github.com/tlswg/tls13-spec/pull/812
David Benjamin pointed out to me that end_of_early_data is the only place where we transition keys on an alert and this would be cleaner if it was a handshake message. This PR does that. It's encrypted under the same keys, so this is largely an aesthetic issue, but I think a good one. Target merge date: Thursday. -Ekr
_______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls